Home
Help
Search
Login
Register
OPNsense Forum
»
Archive
»
20.1 Legacy Series
»
wan gui access
« previous
next »
Print
Pages: [
1
]
Author
Topic: wan gui access (Read 2335 times)
cerien
Newbie
Posts: 4
Karma: 0
wan gui access
«
on:
March 23, 2020, 09:19:06 pm »
Hello
I am discovering opnsense 20.1, and I have installed it on a vm in my lan, with 2 interfaces, LAN 192.168.1.1, and WAN 192.168.2.xxx - fresh install from the iso.
I am trying to access the management gui via the wan port - In system/settings/administration, I've defined listend to all ports for webgui, etc...
Interfaces WAN : I've unblocked private networks (and bogon networks, just in case !)
I've added a firewall rule, wan, source any, destination wan address, port https
No luck - when I connect to the WAN IP, no gui comes up !
In the logs, I see my rule being triggered, in green, but not gui.
Out of despair, I've done the same config on a fresh pfsense, immediate success !
I've tried adding a nat rule, port forwarding to 192.168.1.1, no luck
Any ideas ? what could be wrong ??
J.
Logged
banym
Sr. Member
Posts: 468
Karma: 31
Free Human Being, FreeBSD, Linux and Mac nerd
Re: wan gui access
«
Reply #1 on:
March 23, 2020, 10:47:28 pm »
I have seen similar behaviour. Can you please try to remove the gateway and test again?
Logged
Twitter: banym
Mastodon: banym@bsd.network
Blog:
https://www.banym.de
cerien
Newbie
Posts: 4
Karma: 0
Re: wan gui access
«
Reply #2 on:
March 23, 2020, 11:28:05 pm »
Mâââgic ! It does indeed work now. I'd love to understand why ! And, how can the lan network now access the WAN ?
Many thanks for your help !
Logged
banym
Sr. Member
Posts: 468
Karma: 31
Free Human Being, FreeBSD, Linux and Mac nerd
Re: wan gui access
«
Reply #3 on:
March 24, 2020, 08:26:26 am »
Would love to see some answer from the developers on that matter, I do not think it is intended.
The lokal traffic should always be answered directly on any interface and not sent to the upstream gateway. But thats just my understanding of TCP/IP and I can be wrong and it has a reason why it is implemented that way.
Logged
Twitter: banym
Mastodon: banym@bsd.network
Blog:
https://www.banym.de
cerien
Newbie
Posts: 4
Karma: 0
Re: wan gui access
«
Reply #4 on:
March 24, 2020, 01:14:53 pm »
as a reference, if someone else has this setup, a good workaround is to declare a 2nd ip adress on the interface of the computer trying to access the gui:
for instance:
Code:
[Select]
ifconfig wlp2s0:0 192.168.1.10 netmask 255.255.255.0 up
and then, the machine can access the gui
Logged
banym
Sr. Member
Posts: 468
Karma: 31
Free Human Being, FreeBSD, Linux and Mac nerd
Re: wan gui access
«
Reply #5 on:
March 24, 2020, 03:00:07 pm »
Logged
Twitter: banym
Mastodon: banym@bsd.network
Blog:
https://www.banym.de
Print
Pages: [
1
]
« previous
next »
OPNsense Forum
»
Archive
»
20.1 Legacy Series
»
wan gui access